cbcvebase.
CVE-2018-5115
published 2018-06-11

CVE-2018-5115: If an HTTP authentication prompt is triggered by a background network request from a page or extension, it is displayed over the currently loaded foreground…

PriorityP342high7.5CVSS 3.0
AVNACLPRNUINSUCHINAN
EPSS
2.58%
83.3th percentile
If an HTTP authentication prompt is triggered by a background network request from a page or extension, it is displayed over the currently loaded foreground page. Although the prompt contains the real domain making the request, this can result in user confusion about the originating site of the authentication request and may cause users to mistakenly send private credential information to a third party site. This vulnerability affects Firefox < 58.

Affected

11 ranges
VendorProductVersion rangeFixed in
canonicalubuntu_linux
canonicalubuntu_linux
canonicalubuntu_linux
debianfirefox< firefox 58.0-1 (sid)firefox 58.0-1 (sid)
mozillafirefox<= 57.0.4
mozillafirefox>= 0 < 58.0.2+build1-0ubuntu0.14.04.158.0.2+build1-0ubuntu0.14.04.1
mozillafirefox>= 0 < 58.0+build6-0ubuntu0.14.04.158.0+build6-0ubuntu0.14.04.1
mozillafirefox>= 0 < 58.0.2+build1-0ubuntu0.16.04.158.0.2+build1-0ubuntu0.16.04.1
mozillafirefox>= 0 < 58.0+build6-0ubuntu0.16.04.158.0+build6-0ubuntu0.16.04.1
mozillafirefox>= 0 < 59.0.1+build1-0ubuntu159.0.1+build1-0ubuntu1
mozillafirefox>= unspecified < 5858

CVSS provenance

nvdv3.07.5HIGHCVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N
nvdv2.05.0MEDIUMAV:N/AC:L/Au:N/C:P/I:N/A:N
osv9.8CRITICAL
vendor_ubuntu9.8CRITICAL
vendor_debian7.5HIGH
Stop checking back — get the weekly exploitation signal.

Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.